# Generated by API Evangelist (build-phrasing.py). Our phrasing, not observed demand. overlay: 1.0.0 info: title: API Evangelist conversational phrasing for Identity.SignIns Policies.app Management Policy API version: 1.0.0 extends: openapi/azure-ad-policies-appmanagementpolicy-api-openapi.yml actions: - target: $.info update: x-apievangelist-phrasing: method: generated generated: '2026-10-01' generator: build-phrasing.py label: Generated by API Evangelist operations: 9 - target: $.paths['/policies/appManagementPolicies'].get update: x-apievangelist-phrasing: intent: List app management policies effect: read questions: - Which app management policies exist in my Entra tenant? - Can I see every policy that restricts credentials on apps and service principals? instructions: - text: List all app management policies in the tenant. - text: Show me the credential restriction policies defined for apps. method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies'].post update: x-apievangelist-phrasing: intent: Create an app management policy effect: write questions: - How do I create a policy that limits password lifetimes on specific apps? - Can a new app management policy be created disabled at first? instructions: - text: Create an app management policy with restrictions {restrictions}. slots: restrictions: requestBody.restrictions - text: Create an app management policy with enabled set to {is_enabled}. slots: is_enabled: requestBody.isEnabled method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}'].get update: x-apievangelist-phrasing: intent: Get an app management policy effect: read questions: - What credential restrictions does a particular app management policy enforce? - Is a given app management policy currently enabled? instructions: - text: Get app management policy {policy}. slots: policy: path.appManagementPolicy-id - text: Show the restrictions configured in app management policy {policy}. slots: policy: path.appManagementPolicy-id method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}'].delete update: x-apievangelist-phrasing: intent: Delete an app management policy effect: destructive questions: - Can I delete an app management policy I no longer need? - What happens to the apps a policy applied to once the policy is deleted? instructions: - text: Delete app management policy {policy}. slots: policy: path.appManagementPolicy-id - text: Remove the credential restriction policy {policy} from the tenant. slots: policy: path.appManagementPolicy-id method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}'].patch update: x-apievangelist-phrasing: intent: Update an app management policy effect: write questions: - Can I switch off an existing app management policy without deleting it? - Is it possible to change the restrictions on a policy that's already applied? instructions: - text: Set enabled to {is_enabled} on app management policy {policy}. slots: is_enabled: requestBody.isEnabled policy: path.appManagementPolicy-id - text: Update the restrictions of app management policy {policy} to {restrictions}. slots: policy: path.appManagementPolicy-id restrictions: requestBody.restrictions method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}/appliesTo'].get update: x-apievangelist-phrasing: intent: List apps an app management policy applies to effect: read questions: - Which applications and service principals are assigned a given app management policy? - How do I see where an app management policy is in effect? instructions: - text: List the apps and service principals app management policy {policy} applies to. slots: policy: path.appManagementPolicy-id - text: Show every object assigned policy {policy}. slots: policy: path.appManagementPolicy-id method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}/appliesTo/{directoryObject-id}'].get update: x-apievangelist-phrasing: intent: Get one object an app management policy applies to effect: read questions: - Can I fetch a single app or service principal from a policy's applied-to list? - Is a specific application among the objects an app management policy covers? instructions: - text: Get object {object} from the appliesTo list of policy {policy}. slots: object: path.directoryObject-id policy: path.appManagementPolicy-id - text: Show whether directory object {object} is covered by app management policy {policy}. slots: object: path.directoryObject-id policy: path.appManagementPolicy-id method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/{appManagementPolicy-id}/appliesTo/$count'].get update: x-apievangelist-phrasing: intent: Count objects an app management policy covers effect: read questions: - How many apps and service principals is an app management policy applied to? - Can I get just the number of objects assigned to a policy? instructions: - text: Count the objects app management policy {policy} applies to. slots: policy: path.appManagementPolicy-id - text: Tell me how many apps are assigned policy {policy}. slots: policy: path.appManagementPolicy-id method: generated generated: '2026-10-01' - target: $.paths['/policies/appManagementPolicies/$count'].get update: x-apievangelist-phrasing: intent: Count app management policies effect: read questions: - How many app management policies does my tenant have? - Can I get a total of the app credential policies defined? instructions: - text: Count the app management policies in the tenant. - text: Tell me the total number of app management policies. method: generated generated: '2026-10-01'